URLhaus Database

You are currently viewing the URLhaus database entry for http://89.32.41.64/hiddenbin/boatnet.m68k which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3632980
URL: http://89.32.41.64/hiddenbin/boatnet.m68k
URL Status:Offline
Host: 89.32.41.64
Date added:2025-09-27 09:01:12 UTC
Last online:2025-10-01 12:XX:XX UTC
Threat:Malware download Malware download
Reporter: threatquery
Abuse complaint sent (?): Yes (2025-09-27 09:02:12 UTC to abuse{at}hostmaze[dot]com)
Takedown time:4 days, 3 hours, 3 minutes Bad (down since 2025-10-01 12:05:52 UTC)
Tags:32-bit elf mirai link Mozi link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-09-30n/aelf 8c841974254eb09d7bf53430055de592e43741590533bb98203675db399cb0e9Virustotal results 54.69%Mirai
2025-09-29n/aelf 7faf9e2c5c80b29df53b26eb16185908028c5453e352500c3fba1602db8f547fn/aMirai
2025-09-29n/aelf 5cf53396377d5dbd50efe5568d3fad7777412abffca9abb5d4b0eef7b4844bbeVirustotal results 57.81%Mirai
2025-09-28n/aelf 779c3dce2621e8121a1559a7709f1880e6acb672b5da3388234bc297b12be00cn/aMirai
2025-09-27n/aelf ad51e76f1acd1e99863080e9f4ddf2d92045e69fd7a7365d76ab650ab002113fn/aMirai
2025-09-27n/aelf 00e8cb90b5bf2a3b72eae378e7524902859da3e8d5f22e7c406f922350eb9f24n/aMirai